Application Security Analyst

kemper· Merastar Insurance Company
Apply Now ↗
🌍 Remote📍 Remote-AL📍 Remote-FL📍 Remote-GA📍 Remote-ILFull time

About this role

Location(s)

Remote-AL, Remote-FL, Remote-GA, Remote-IL

Details

Kemper is one of the nation’s leading specialized insurers. Our success is a direct reflection of the talented and diverse people who make a positive difference in the lives of our customers every day. We believe a high-performing culture, valuable opportunities for personal development and professional challenge, and a healthy work-life balance can be highly motivating and productive. Kemper’s products and services are making a real difference to our customers, who have unique and evolving needs. By joining our team, you are helping to provide an experience to our stakeholders that delivers on our promises. 

Kemper Insurance is hiring an Application Security Analyst. The Application Security Analyst is one who embeds security into the software development lifecycle and performs technically credible application-security assessment across modern applications, APIs, cloud-native services, and software supply chains. The role partners directly with developers and architects to prevent, identify, validate, and remediate exploitable application risk. 

Key Responsibilities 

  • Integrate security requirements and threat modeling into architecture, design, development, testing, release, and exception processes. 

  • Perform and validate SAST, DAST, SCA, API, mobile, and manual security testing; distinguish exploitable weaknesses from tool noise. 

  • Conduct security design and architecture reviews for web, API, cloud-native, containerized, and distributed applications. 

  • Partner with developers to provide code-level or design-level remediation guidance and verify closure. 

  • Build or improve CI/CD security controls, scanning integrations, secure coding standards, and developer enablement. 

  • Use risk, exploitability, asset criticality, and business context to prioritize application vulnerabilities and security debt. 

  • Analyze recurring defect patterns and drive preventive control improvements across engineering teams. 

Qualifications

  • Hands-on experience with application security testing, secure code review, and vulnerability validation. 
  • Strong knowledge of OWASP Top 10/API risks, authentication/authorization patterns, session management, cryptography fundamentals, input validation, and common web/application attack techniques. 
  • Working knowledge of SAST, DAST, SCA, API testing, secrets scanning, and CI/CD security tooling. 
  • Understanding of modern software architectures, REST/GraphQL APIs, containers, cloud services, and software supply-chain dependencies. 
  • Ability to engage developers at a technical level and provide actionable remediation guidance. 
  • Applied secure SDLC, threat modeling, architecture review, risk-based exception, and application-risk prioritization experience. 
  • Ability to translate exploitability into business impact and risk treatment decisions. 
  • Understanding of security-control objectives for application development and deployment.
  • BS Computer Science, Software Engineering, Cybersecurity, Information Technology, or a related discipline, or equivalent relevant professional experience. ​

The range for this position is 93,500-155,500. When determining candidate offers, we consider experience, skills, education, certifications, and geographic location among other factors. This job is also eligible for our Kemper benefits package (Medical, Dental, Vision, PTO, 401K, etc.)

Kemper is proud to be an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran, disability status or any other status protected by the laws or regulations in the locations where we operate. We are committed to supporting diversity and equality across our organization and we work diligently to maintain a workplace free from discrimination.  
Kemper does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Kemper and Kemper will not be obligated to pay a placement fee. 


Kemper will never request personal information, such as your social security number or banking information, via text or email.  Additionally, Kemper does not use external messaging applications like WireApp or Skype to communicate with candidates.  If you receive such a message, delete it.  

Frequently Asked Questions

Is the salary disclosed for the Application Security Analyst position at kemper?
The salary for this Application Security Analyst role at kemper is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Is the Application Security Analyst job at kemper remote?
Yes, this Application Security Analyst position at kemper is remote, with team members based in Remote-AL, Remote-FL, Remote-GA, Remote-IL. You can work from home or anywhere in the supported regions.
Is the Application Security Analyst role at kemper full-time or part-time?
This is listed as a Full time position. It is posted as a Application Security Analyst role in the Merastar Insurance Company department at kemper.
Which team or department does the Application Security Analyst at kemper belong to?
This Application Security Analyst position is part of the Merastar Insurance Company department at kemper. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Application Security Analyst position at kemper?
Click the "Apply Now" button on this page. You will be redirected to kemper's official application portal hosted on workday where you can submit your application directly.
When was the Application Security Analyst job at kemper posted?
This Application Security Analyst position at kemper was posted on Sep 25, 2026. Apply as soon as possible — early applications are often reviewed first.
Application Security Analyst
kemper
Apply for this role ↗

You'll be redirected to kemper's official application page on Workday.